<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>Malware Security Insights</title>
    <description>Practical cyber security guidance, technical research, and lessons from Malware Security practitioners.</description>
    <link>https://malsec.com.au/blog/</link>
    <atom:link xmlns:atom="http://www.w3.org/2005/Atom" href="https://malsec.com.au/rss.xml" rel="self" type="application/rss+xml" />
    <language>en-AU</language>
    <item>
        <title>Your AI Agent Has a Badge and Keys. Now What?</title>
        <description>From a crafted email to an agent crossing into production: five security questions to answer before AI can read, decide and act.</description>
        <link>https://malsec.com.au/blog/securing-agentic-ai-before-production/</link>
        <guid isPermaLink="true">https://malsec.com.au/blog/securing-agentic-ai-before-production/</guid>
        <pubDate>Sat, 25 Jul 2026 00:00:00 GMT</pubDate>
      </item>
<item>
        <title>The Browser You Forgot: Preparing for an Essential Eight Assessment</title>
        <description>A practical lesson in why maturity claims fail—and how to prepare evidence that represents the environment you actually operate.</description>
        <link>https://malsec.com.au/blog/preparing-for-essential-eight-assessment/</link>
        <guid isPermaLink="true">https://malsec.com.au/blog/preparing-for-essential-eight-assessment/</guid>
        <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
      </item>
<item>
        <title>Your Penetration Test Is Only as Good as the Question</title>
        <description>Why a list of IP addresses is not a test plan—and the five decisions that turn a vague scope into useful assurance.</description>
        <link>https://malsec.com.au/blog/scoping-a-penetration-test/</link>
        <guid isPermaLink="true">https://malsec.com.au/blog/scoping-a-penetration-test/</guid>
        <pubDate>Thu, 22 Jan 2026 00:00:00 GMT</pubDate>
      </item>
<item>
        <title>Henchman Hysterics: Hacking Into Dr Hadria&apos;s Lair</title>
        <description>The write-up for the Blackbag challenge run by Malware Security &amp; Redacted Information Security for BSides Adelaide 2024</description>
        <link>https://malsec.com.au/blog/blackbag-adl-2024/</link>
        <guid isPermaLink="true">https://malsec.com.au/blog/blackbag-adl-2024/</guid>
        <pubDate>Thu, 30 May 2024 00:00:00 GMT</pubDate>
      </item>
<item>
        <title>Navigating Cloud Security Assessments with IRAP</title>
        <description>A concise guide to understanding the anatomy of cloud security assessments and authorisations</description>
        <link>https://malsec.com.au/blog/cloud-security-assessments-irap/</link>
        <guid isPermaLink="true">https://malsec.com.au/blog/cloud-security-assessments-irap/</guid>
        <pubDate>Wed, 10 Jan 2024 00:00:00 GMT</pubDate>
      </item>
<item>
        <title>Demystifying Vulnerability Scans, Penetration Tests, and Red Team Operations</title>
        <description>Understanding the key differences and choosing the right approach for your organisation&apos;s security goals.</description>
        <link>https://malsec.com.au/blog/vulnerability-scans-vs-penetration-tests-vs-red-teams/</link>
        <guid isPermaLink="true">https://malsec.com.au/blog/vulnerability-scans-vs-penetration-tests-vs-red-teams/</guid>
        <pubDate>Wed, 25 Oct 2023 00:00:00 GMT</pubDate>
      </item>
  </channel>
</rss>